Castleforce IT Security Team

ROTI Secure Gateway solution

We offer a next generation of Restricted over the Internet (ROTI) solution that offers secure remote access and resource provisioning and incorporates EAL4 certified devices. The Secure Gateway provides a readily accessible, centralised web interface and, through authentication, access control and secure data delivery mechanisms, ensures security and integrity in data and application delivery.

The system provides the security of a private network with the ease and flexibility of the Internet and can handle UK RESTRICTED information over the internet. 

The system provides the security of a private network with the ease and flexibility of the Internet allowing enterprises to rapidly realise the benefits of a secure extranet.

The Secure Gateway has been developed based on the guidance and good practice offered by CESG.

The Secure Gateway provides an authenticated end to- end encrypted connection using a standard web browser and ensures that users are restricted to authorized areas and can never make a direct connection to the application layer. This prohibits network layer transmission of malicious code, malware, Trojans, worms or viruses by users connecting on potentially compromised computers.

Users are restricted to authorized areas and can never make a direct connection to the application layer.

All of an organization’s trading partners (including clients, suppliers and trading partners) can securely access local resources such as network file servers, email, and Web, UNIX, Client/Server and legacy applications though any standard Web browser. No specialized client hardware or software is required, keeping costs associated with rollout, training and support to a minimum.

Secure Gateway

  • Provides secure remote access, resource provisioning (authentication and identity management) and audit-able, detailed reporting.
  • Internet access via single port (443) HTTPS (SSL)
  • 128 MD5 and Triple DES encryption methods. Data secured in transit by 128-bit (strong) encryption.
  • Reverse proxy capability allows connections to web, mainframe, and client/server applications
  • Dynamically analyze and rewrite content
  • Explicitly minimize all client–side caching
  • Benefits:  a complete solution offering military-grade security for clients with sophisticated security requirements

Supported Services include;

Collaboration Tools

  • Voice, Video & whiteboarding
  • Secure email & IM
  • MOSS, Sharepoint, WSS
  • OpenText ECM

Bespoke Applications & Databases

  • Web based apps
  • Client Server apps
  • Oracle
  • SQL
  • LogiXML

Contact us about ROTI Gateway 

Compliance Standards

Castleforce can help you reach GCSx CoCo

GCSX No 6 Access Control

GCSX No 10 Mobile / Home Working

Castleforce can help you reach PCI DSS

PCI DSS 2.3 Encrypt all non-console administrative access 

Requirement 4: Encrypt transmission of cardholder data across open, public networks

Castleforce can help you reach ISO27001

A.11.7 Mobile computing and teleworking

Secure Gateway Accreditation

  • EAL 4 Common Criteria Assurance (Equivalent to ITSEC E3)
  • Processing and holding information and data up to ‘RESTRICTED’
  • 'RESTRICTED' over the Internet (ROTI) with approved encryption